5 ms·
Telegram is scary and questionable. Inventing your own encryption is never the answer and reeks of horrible understanding of security, at this stage there is no
by botto 8y ago
Telegram is scary and questionable.
Inventing your own encryption is never the answer and reeks of horrible understanding of security, at this stage there is no reason they should not adopt a standard of communication like Signal protocol.
Signal app itself is ok, it's a little....annoying as it requires a phone number and the UX needs some love.
Keybase is great, It has ways of verifying you across multiple services and has end-to-end encryption using PGP.
Also offers file storage.
- ymolodtsov 8y agoWe still haven't seen any examples of Telegram being compromised.
- botto 8y agoThat's the same as saying that a car model is safe because there have not been any crashes yet with this make and model. No cars are safe because there are industry standards that a manufacturer is tested to ensure they are following. Closed source (both in code and implementation) has no place in the security world and anything security related should always be open for anyone to scrutinize.
- GranPC 8y agoFeel free to scrutinize Telegram's crypto and E2E implementation for secret chats. It's open source and you can find it here: https://github.com/tdlib/td https://github.com/tdlib/td
- rvnx 8y agoYep, did it, not going to use Telegram now. Love the unsecure TLRPC objects deserialization that actually makes the native client crash and to not verify what other clients have sent: https://raw.githubusercontent.com/DrKLO/Telegram/e397bd9afdfd9315bf099f78a903f8754d297d7a/TMessagesProj/src/main/java/org/telegram/tgnet/TLRPC.java https://raw.githubusercontent.com/DrKLO/Telegram/e397bd9afdf... and the tons of magic and undocumented numbers in the code: https://github.com/DrKLO/Telegram/blob/master/TMessagesProj/jni/tgnet/Handshake.cpp#L278 https://github.com/DrKLO/Telegram/blob/master/TMessagesProj/...
- empthought 8y agoCrashing in the face of invalid and likely malicious input is a secure approach (fail fast).
- saagarjha 8y agoDepends on whether the crash is intentional :/
- Dolores12 8y agoRSA encryption is potentially exploitable by quantum computing. Still people are using it everywhere.
- Tomte 8y agoSignal/RedPhone did invent its own crypto (the ratchet), didn't they?
- tivert 8y ago> Signal/RedPhone did invent its own crypto (the ratchet), didn't they? IIRC, they didn't invent any crypto primitives (e.g. cyphers).
- Tomte 8y agoSure, but the primitives are pretty boring, anyway. Few people try to invent those. Many more try to invent new constructions on top of the primitives. That's where things go wrong, in practice. (I fully trust in OWS here, but "don't invent crypto" is an unsuitable argument in a Signal-vs-Telegram discussion)
- tivert 8y ago> Many more try to invent new constructions on top of the primitives. That's where things go wrong, in practice. Things go wronger when non-cryptographers try to invent their own primitives, and that's what the saying "don't invent your own crypto" was invented to warn against.